Show filters
109 Total Results
Displaying 61-70 of 109
Sort by:
Attacker Value
Unknown

CVE-2005-2931

Disclosure Date: December 07, 2005 (last updated February 22, 2025)
Format string vulnerability in the SMTP service in IMail Server 8.20 in Ipswitch Collaboration Suite (ICS) before 2.02 allows remote attackers to execute arbitrary code via format string specifiers to the (1) EXPN, (2) MAIL, (3) MAIL FROM, and (4) RCPT TO commands.
0
Attacker Value
Unknown

CVE-2005-2923

Disclosure Date: December 07, 2005 (last updated February 22, 2025)
The IMAP server in IMail Server 8.20 in Ipswitch Collaboration Suite (ICS) before 2.02 allows remote attackers to cause a denial of service (crash) via a long argument to the LIST command, which causes IMail Server to reference invalid memory.
0
Attacker Value
Unknown

CVE-2005-2160

Disclosure Date: July 06, 2005 (last updated February 22, 2025)
IMail stores usernames and passwords in cleartext in a cookie, which allows remote attackers to obtain sensitive information.
Attacker Value
Unknown

CVE-2005-1250

Disclosure Date: June 22, 2005 (last updated February 22, 2025)
SQL injection vulnerability in the logon screen of the web front end (NmConsole/Login.asp) for IpSwitch WhatsUp Professional 2005 SP1 allows remote attackers to execute arbitrary SQL commands via the (1) User Name field (sUserName parameter) or (2) Password (sPassword parameter).
0
Attacker Value
Unknown

CVE-2005-1255

Disclosure Date: May 25, 2005 (last updated February 22, 2025)
Multiple stack-based buffer overflows in the IMAP server in IMail 8.12 and 8.13 in Ipswitch Collaboration Suite (ICS), and other versions before IMail Server 8.2 Hotfix 2, allow remote attackers to execute arbitrary code via a LOGIN command with (1) a long username argument or (2) a long username argument that begins with a special character.
0
Attacker Value
Unknown

CVE-2005-1249

Disclosure Date: May 25, 2005 (last updated February 22, 2025)
The IMAP daemon (IMAPD32.EXE) in Ipswitch Collaboration Suite (ICS) allows remote attackers to cause a denial of service (CPU consumption) via an LSUB command with a large number of null characters, which causes an infinite loop.
0
Attacker Value
Unknown

CVE-2005-1256

Disclosure Date: May 25, 2005 (last updated February 22, 2025)
Stack-based buffer overflow in the IMAP daemon (IMAPD32.EXE) in IMail 8.13 in Ipswitch Collaboration Suite (ICS), and other versions before IMail Server 8.2 Hotfix 2, allows remote authenticated users to execute arbitrary code via a STATUS command with a long mailbox name.
0
Attacker Value
Unknown

CVE-2005-1252

Disclosure Date: May 25, 2005 (last updated February 22, 2025)
Directory traversal vulnerability in the Web Calendaring server in Ipswitch Imail 8.13, and other versions before IMail Server 8.2 Hotfix 2, allows remote attackers to read arbitrary files via "..\" (dot dot backslash) sequences in the query string argument in a GET request to a non-existent .jsp file.
0
Attacker Value
Unknown

CVE-2005-1254

Disclosure Date: May 25, 2005 (last updated February 22, 2025)
Stack-based buffer overflow in the IMAP server for Ipswitch IMail 8.12 and 8.13, and other versions before IMail Server 8.2 Hotfix 2, allows remote authenticated users to cause a denial of service (crash) via a SELECT command with a large argument.
0
Attacker Value
Unknown

CVE-2005-0707

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Buffer overflow in the IMAP daemon (IMAP4d32.exe) for Ipswitch Collaboration Suite (ICS) before 8.15 Hotfix 1 allows remote authenticated users to execute arbitrary code via a long EXAMINE command.
0